CVE-2022-31524
EUVD-2022-5298011.07.2022, 01:15
The PureStorage-OpenConnect/swagger repository through 1.1.5 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| purestorage | pure_swagger | 𝑥 ≤ 1.1.5 |
𝑥
= Vulnerable software versions